<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z0000A87NGaCQMOkta Classic EngineAdministrationAnswered2024-05-31T19:13:48.000Z2024-05-08T20:42:54.000Z2024-05-31T19:13:48.000Z

BrentA.52615 (Okta) asked a question.

2024-05-23 OIE Meetup: Submit Your Questions Here

To get a head start on the 5/23/2024 OIE Meetup "ask me anything" session, post your questions in advance here. Just click the "answer" button on this post, and enter your question.

 

If you have not already, you can register for the live OIE Meetup webinar here:

https://okta.zoom.us/webinar/register/4116972178952/WN_kK7NrNGxT_2vAExNaDO70g

 

If you are not able to join the session live, come back to this post after 5/23 and we will make sure all questions are address here as well.

 

Thanks & we look forward to seeing you on 5/23!


  • User16594883467582706479 (Customer Support Online Experience)

    Looking forward to seeing as many interesting cases as possible. First question is one I encountered a couple of times on the Forum: Can someone keep the Classic UI instead of switching to OIE?

  • HarryM.77464 (Customer)

    Hi! Looking forward to joining this event as we are pre-OIE upgrade and going through many testing scenarios. A few questions:

    • If a machine is enrolled in JAMF connect, and they log into their machine with their Okta credentials, does this technically create the first Global Session for the user? So if the global policy only required one session auth, they would not need to auth any additional times (assuming other auth policies do not require it)?
    • Testing fastpass auth between myself (admin account) and a test account (user account) is yielding different results. My admin account ONLY asks for MFA push when auth'ing with fastpass, whereas the test user account ONLY utilizes Okta Verify Desktop app (which prompts for biometric). I configured a 2nd test user and the behavior is the same. I have looked at our auth policies in place and they are all hitting the same rule, so I am not sure where this is being differentiated. Do admin and user accounts have different auth policies?
    • This article states that every single app that had a mobile device trust rule enabled must be manually removed prior to upgrading our tenant. We have almost 300 apps in our environment - so we need to go to all 300 apps and manually remove these rules? What is the impact if we don't?
    • We utilize an IWA agent for windows devices - does this functionality get completely removed when upgrading?
    Expand Post
  • YvonneB.34691 (Customer)

    Is there a way to suppress the prompt to select the default factor or MFA prompt on the first-time login after the upgrade? There is a group of users and service accounts that are set up to never get challenged when they are in the network zone. It may become an issue if they receive any MFA-related prompts.

  • YvonneB.34691 (Customer)

    I would like to know if the OIE upgrade can be rolled back. This may be a repeat question, but I would appreciate your response.

  • YvonneB.34691 (Customer)

    I'm wondering if you would advise that we do a configuration backup, including SSO apps, before the upgrade. What is your advice? If you think it's a good idea, can you please provide instructions on how to back them up?

10 of 11
This question is closed.
Loading
2024-05-23 OIE Meetup: Submit Your Questions Here